Build and maintain a complete project handbook and delivery packs for SaaS, workflows, automations, and AI systems.
Security checklist specifically for SaaS applications built with Next.js, Supabase, and Stripe. Covers authentication hardening, Row Level Security, Stripe webhook verification,…
Entwirft und prüft B2B-SaaS-Verträge mit Zugriffslizenz, Verfügbarkeit, Datenschutz, Exit, Security und Haftung im Softwarerecht De Eu Us.
PRIORITY OVERRIDE protocol. Activates when trauma/crisis/vulnerability detected. Stops all frameworks, deploys presence-only mode. Always running in background.
Sade hukuk dili: karmaşık dilekçe, karar ve sözleşmeleri müvekkilin anlayacağı yalın Türkçeye çevirme; hukuki doğruluğu koruyarak özetleme, terim açıklama ve bilgilendirme metni…
Encrypt, decrypt, and manage keys with the SAFE CLI — a modern GPG alternative with post-quantum support. — from tan-yong-sheng/ai-vision-mcp
Encrypt, decrypt, and manage keys with the SAFE CLI — a modern GPG alternative with post-quantum 。Use when 需要项目管理、任务规划、进度跟踪、团队协作时使用。不适用于实际人员绩效评估。适用于独立开发者、企业团队和自动化工作流场景。 — from…
Sweeps DeFi protocol Safe multisig wallets for governance misconfigurations and security weaknesses. Given a protocol name, Safe address, or "sweep all", fetches live config and…
Functional safety reviewer for the AIM autonomous heavy equipment platform. Reviews code changes for impacts on machine safety — e-stop chains, watchdog integrity, actuator…
Scan inputs for prompt injection, unsafe content, and adversarial attacks using AIDefence
Safety hooks for Claude Code — 695 pre-built hooks that prevent file deletion, credential leaks, git disasters, and token waste during autonomous AI coding sessions.
SAFT (Simple Agreement for Future Tokens) review and advisory skill for crypto founders, token issuers, and investors.
Sage theme with Acorn (Laravel IoC for WordPress) and Lando — lando start, lando info, lando acorn, Service Providers, View Composers, Blade components, ACF Composer blocks and…
Use to build or instrument a Sail Voyage — Sail's name for one background or long-running agent run, recorded as a trace of named agents, spans, and events.
Orchestrates static analysis, vulnerability scanning, and automated patching into a continuous security workflow.
Apply Salesforce security best practices for Connected Apps, OAuth, and field-level security. Use when securing API credentials, implementing least privilege access, or auditing…
Secure SalesLoft OAuth tokens, API keys, and webhook signatures. Use when implementing token rotation, securing webhook endpoints, or auditing SalesLoft API access controls.
Discover SameDayDesk's nineteen account-free machine services and produce a verified, non-spending purchase intent from the live OpenAPI contract and unpaid HTTP 402 challenge.
Add 8 security governance layers to your OpenClaw agent — budget controls, permissions, audit logging, kill switch, identity signing, skill vetting, process isolation, and gateway…
Use when screening a counterparty, transaction, or asset against EU restrictive measures (sanctions).
Security, custody, and privacy infrastructure for AI agents. Use when the agent needs encrypted state storage, self-custodied identity, selective disclosure, zero-knowledge…
Configure Claude Code sandbox security with file system and network isolation boundaries — from DNYoussef/context-cascade
Detect VM/sandbox escape vulnerabilities in packages using node:vm, simpleeval, or custom sandboxes that can be bypassed to achieve code execution.
Configure and manage Claude Code sandboxing for secure code execution. Use when user mentions sandboxing, security isolation, untrusted code, network restrictions, filesystem…
Wrap the current audit agent session inside the Anthropic Sandbox Runtime (srt) before starting any security audit.
Run untrusted skills safely with soft-sandbox protection. Wraps skills in multi-layer prompt-based defense (~85% attack prevention).
Redaction-only subagent for pf-ethnographer. Accepts raw observed behavior and interpretation reports from the Ethnographer, applies aggressive PII and sensitive-data redaction…
Advanced input validation and sanitization using Zod. Use to prevent XSS and ensure data integrity before sending to Appwrite.
Wirtschaftsprüfer: sanktionen russia belarus - Rechtsprechungscheck, stärkste Gegenansicht und Red-Team-Korrektur; mit Live-Normencheck, Kammerlogik, Verhältnismäßigkeit,…
Anwälte: sanktionen und mandatsannahme - Rechtsprechungscheck, stärkste Gegenansicht und Red-Team-Korrektur; mit Live-Normencheck, Kammerlogik, Verhältnismäßigkeit, Belegplan und…
Patentanwälte: sanktionen und russlandbezug - Rechtsprechungscheck, stärkste Gegenansicht und Red-Team-Korrektur; mit Live-Normencheck, Kammerlogik, Verhältnismäßigkeit, Belegplan…
Design production-ready software products following senior architect principles - from requirements to deployment architecture.
Guides development with SAP AI Core and SAP AI Launchpad for enterprise AI/ML workloads on SAP BTP. Use when: deploying generative AI models, building orchestration workflows with…
Cross-functional coordination protocol governing handoff contracts between SAP AI Governance, Security, and Architecture.
SAP API Management policy design and governance — security, traffic, mediation, lifecycle
Package and structure audit evidence for SAP controls covering Segregation of Duties, change management, access management, and financial controls.
SAP BTP Audit Log Service — audit trail capture, configuration, compliance (SOC 2, GDPR), audit log viewer, retention policies, OAuth audit integration.
SAP BTP best practices for enterprise architecture, account management, security, and operations, with verification evidence tracked in the repository ledger.
SAP BTP Cloud Integration Automation Service (CIAS) skill for guided integration workflows. Use when: setting up CIAS subscriptions, configuring destinations, assigning roles…
SAP BTP Credential Store — secure credential vault on BTP, credential retrieval API, service binding secrets, encrypted password storage, credential rotation, integration with CAP…
Configures and integrates SAP Master Data Integration (MDI) service on SAP Business Technology Platform.
SAP Cloud Application Programming Model (CAP) development skill using Capire documentation. Use when: building CAP applications, defining CDS models, implementing services,…
Use when the user is working with SAP Databricks — setting up the account, administering workspaces, managing identity (users/groups/service principals/SCIM), configuring…
SAP dependency security and MCP executable trust policy with secure upgrades, cooldowns, staged rollout, and supply-chain protection.
Review SAP Integration Suite topology and configuration: Cloud Integration iFlows, API Management policies, Event Mesh topics and queues, OAuth/certificate security, error…
Enumerate and export SAP BTP and S/4HANA landscape configuration using read-only list, get, describe, and export operations only.
On-chain memory subsystem for SAP SDK v0.15.0. Use when: init vault, open session, inscribe encrypted memory, delegated inscription, epoch pagination, ledger init/write/seal,…
Advisory review of RISE with SAP and SAP cloud service contracts for SLA and vendor risk: responsibility split between SAP, customer, and partner; SLA tiers and credit mechanisms;…
Cross-functional escalation protocol governing handoffs between SAP Security, HR, and Legal when identity misuse, privileged-access anomalies, SoD violations, insider-risk…
Review SAP identity and access management posture: Cloud Identity Services (IAS/IPS), Authorization and Trust Management (XSUAA), role collections, GRC Access Control, and…
Advisory triage of an SAP transformation program portfolio: workstream prioritization, dependency and risk mapping, value vs effort classification, readiness gating across…
Log on to a locally installed SAP GUI for Windows system from a JSON configuration, preferring pywin32 with SAP GUI Scripting and automatically falling back to sapshcut.exe when…
Source code vulnerability hunting (SAST). Decomposes analysis into specialized passes: map entry points, map dangerous ops, trace flows, find gaps, adversarial validation,…
Perform codebase analysis and architecture mapping as the first phase of a security assessment. Explores the tech stack, frameworks, entry points, data flows, and trust…
Static Application Security Testing orchestration and analysis. Execute Semgrep, Bandit, ESLint security plugins, CodeQL, and other SAST tools.
Python security vulnerability detection using Bandit SAST with CWE and OWASP mapping. Use when: (1) Scanning Python code for security vulnerabilities and anti-patterns, (2)…
Detect business logic vulnerabilities in a codebase using a three-phase approach: threat modeling (domain analysis and attack scenarios), batched verify (check exploitable gaps in…
Static Application Security Testing (SAST) tool setup, configuration, and custom rule creation for comprehensive security scanning across multiple programming languages.
Configure Static Application Security Testing (SAST) tools for automated vulnerability detection in application code.
Industrialized DevSecOps pipeline integration combining Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis…